PT-2025-38453 · Linux+3 · Linux Kernel+3

Published

2023-02-21

·

Updated

2026-05-26

·

CVE-2023-53434

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue in the remoteproc subsystem, specifically within the imx dsp rproc component. The vulnerability relates to improper handling of memory writes to the IRAM of i.MX DSP Cores. Hardware specifications dictate that only 32-bit writes are permitted; otherwise, a kernel panic may occur. To address this, custom memory copy and memset functions were implemented to adhere to this restriction. The IRAM is part of the HiFi DSP.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

Weakness Enumeration

Related Identifiers

BDU:2025-12986
CVE-2023-53434

Affected Products

Debian
Hifi Dsp
Linux Kernel
I.Mx Dsp Cores